CVE-2023-41665

WordPress GiveWP plugin <= 2.33.0 - GiveWP Manager+ Privilege Escalation vulnerability

Improper Privilege Management vulnerability in GiveWP allows Privilege Escalation.This issue affects GiveWP: from n/a through 2.33.0.


We have discovered 7,316 live websites that are affected by CVE-2023-41665.

Test my site




Affected Software

Product  GiveWP
Category Wordpress Plugins
Vulnerable Domains7,316 live websites (20.07% of GiveWP install base)
Vulnerable Versions
  • from 0 through 2.33
Vulnerable Versions Count175 versions ( 73.84% of all versions)


Common Weakness Enumeration

CWE-269 Improper Privilege Management



Details

  • Published - May 17, 2024
  • Updated - Aug 2, 2024

Credits

  • Rafie Muhammad (Patchstack) (finder)

CVE-2023-41665 usage by Country

United States3,392 websites



Germany768 websites
France463 websites
GB375 websites
Italy218 websites
Cyprus159 websites
Canada157 websites
Australia128 websites
Spain107 websites
South Africa99 websites

CVE-2023-41665 usage by TLD

.org2,823 websites
.com1,884 websites
.de196 websites
.it171 websites
.fr133 websites
.net129 websites
.ca127 websites
.org.uk123 websites
.co.uk100 websites
.pl72 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2023-41665

Top websites that are affected by CVE-2023-41665. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*************.sk United States**,***
********.org United States**,***
*********.org United States**,***
****************.org Germany**,***
*******.org United States**,***
**************.com Australia**,***
****.org United States**,***
**********.net United States***,***
***.***.uk United States***,***
****************.org United States***,***
See full domain list

FAQ

CVE-2023-41665 is Improper Privilege Management in GiveWP
A total of 7,316 websites have been identified as vulnerable to CVE-2023-41665, discovered through global website indexing conducted by WebTechSurvey.
GiveWP is susceptible to CVE-2023-41665 vulnerability.
GiveWP versions before, and including, 2.33 are vulnerable to CVE-2023-41665.